Add functionality needed to process proxy certificates.
[openssl.git] / test / CAss.cnf
index 0884fee36159c3fdba98084f49cbff30a3e1e7db..20f8f05e3dfd36febc570603016a364288a76c50 100644 (file)
@@ -71,4 +71,6 @@ emailAddress          = optional
 [ v3_ca ]
 subjectKeyIdentifier=hash
 authorityKeyIdentifier=keyid:always,issuer:always
-basicConstraints = CA:true
+basicConstraints = CA:true,pathlen:1
+keyUsage = cRLSign, keyCertSign
+issuerAltName=issuer:copy